Recent vulnerabilities
| ID | CVSS | Description | Vendor | Product | Published | Updated |
|---|---|---|---|---|---|---|
| cve-2026-77557 | 9.8 (v3.1) | A malicious actor with access to the network coul… |
Ubiquiti Inc |
UniFi Protect AI Key |
2026-08-26T10:53:27.169Z | 2026-08-26T12:38:19.953Z |
| cve-2026-77554 | 10 (v3.1) | A malicious actor with access to the network coul… |
Ubiquiti Inc |
UniFi Talk Application |
2026-08-26T10:45:46.316Z | 2026-08-26T12:42:21.536Z |
| cve-2026-77553 | 9.9 (v3.1) | A malicious actor with access to the network and … |
Ubiquiti Inc |
UniFi Access Application |
2026-08-26T10:42:54.552Z | 2026-08-26T12:45:32.606Z |
| cve-2026-77552 | 9.8 (v3.1) | A malicious actor with access to the network coul… |
Ubiquiti Inc |
UniFi Enterprise Audio/Video Bridge |
2026-08-26T10:40:05.262Z | 2026-08-26T12:46:01.853Z |
| cve-2026-77551 | 9 (v3.1) | A malicious actor with access to the network and … |
Ubiquiti Inc |
UniFi Connect Display Cast Pro |
2026-08-26T10:37:19.573Z | 2026-08-26T12:49:50.559Z |
| cve-2026-77550 | 10 (v3.1) | A malicious actor with access to the network coul… |
Ubiquiti Inc |
UniFi OS Server |
2026-08-26T10:33:29.989Z | 2026-08-27T03:56:41.054Z |
| cve-2026-77549 | 9 (v3.1) | A malicious actor with access to the network and … |
Ubiquiti Inc |
UniFi OS Server |
2026-08-26T10:30:06.712Z | 2026-08-27T03:56:37.824Z |
| cve-2026-80206 | 8.2 (v4.0) 5.9 (v3.1) | NLTK 3.10.2 Regular Expression Denial of Service via tgrep |
nltk |
nltk |
2026-08-26T10:28:15.035Z | 2026-08-26T12:52:23.513Z |
| cve-2026-80205 | 8.7 (v4.0) 7.5 (v3.1) | NLTK before 3.10.0 ReDoS via Text.findall() unvalidate… |
nltk |
nltk |
2026-08-26T10:28:14.352Z | 2026-09-01T22:06:44.235Z |
| cve-2026-80204 | 9.3 (v4.0) 5.4 (v3.1) | Grav before 1.0.18 Authentication Bypass via Scoped API Key |
getgrav |
grav |
2026-08-26T10:28:13.671Z | 2026-08-26T12:03:55.898Z |
| cve-2026-80203 | 9.3 (v4.0) 9.8 (v3.1) | Grav before 1.0.18 Authentication Bypass via Scoped API Key |
getgrav |
grav |
2026-08-26T10:28:12.996Z | 2026-08-28T22:48:35.508Z |
| cve-2026-77548 | 9.9 (v3.1) | A malicious actor with access to the network and … |
Ubiquiti Inc |
UniFi Protect Application |
2026-08-26T10:23:37.645Z | 2026-08-26T12:51:38.840Z |
| cve-2026-77547 | 9.9 (v3.1) | A malicious actor with access to the network and … |
Ubiquiti Inc |
UniFi Access Application |
2026-08-26T10:20:14.378Z | 2026-08-26T13:18:44.457Z |
| cve-2026-77546 | 9.9 (v3.1) | A malicious actor with access to the network and … |
Ubiquiti Inc |
UniFi Access Application |
2026-08-26T10:16:47.849Z | 2026-08-26T13:19:37.445Z |
| cve-2026-77545 | 9 (v3.1) | A malicious actor with access to the network, low… |
Ubiquiti Inc |
UniFi OS Server |
2026-08-26T10:13:43.772Z | 2026-08-27T03:56:56.210Z |
| cve-2026-80350 | 7.1 (v4.0) 7.1 (v3.1) | OneUptime before 12.0.7 Server-Side Request Forgery vi… |
OneUptime |
OneUptime |
2026-08-26T10:09:50.075Z | 2026-08-29T11:48:05.396Z |
| cve-2026-80349 | 9.3 (v4.0) 9.8 (v3.1) | TarsWeb through 3.0.14 Authentication Bypass via Spoof… |
TarsCloud |
TarsWeb |
2026-08-26T10:09:49.376Z | 2026-08-26T12:54:17.573Z |
| cve-2026-80348 | 8.7 (v4.0) 8.8 (v3.1) | TarsWeb through 3.0.16 Missing Authorization on Patch … |
TarsCloud |
TarsWeb |
2026-08-26T10:09:48.681Z | 2026-08-26T16:10:10.076Z |
| cve-2026-80347 | 8.7 (v4.0) 7.5 (v3.1) | mcp-fetch through 1.6.3 Server-Side Request Forgery vi… |
kazuph |
mcp-fetch |
2026-08-26T10:09:47.977Z | 2026-08-26T12:05:24.996Z |
| cve-2026-80346 | 7.1 (v4.0) 7.1 (v3.1) | StarRocks through 4.0.13 Missing Authorization on DROP… |
StarRocks |
StarRocks |
2026-08-26T10:09:47.301Z | 2026-08-28T22:47:20.732Z |
| cve-2026-77543 | 9.9 (v3.1) | A malicious actor with access to the network and … |
Ubiquiti Inc |
UniFi Access Application |
2026-08-26T10:07:54.505Z | 2026-08-26T13:20:53.489Z |
| cve-2026-77542 | 9.1 (v3.1) | A malicious actor with access to the network and … |
Ubiquiti Inc |
UID Enterprise Agent |
2026-08-26T10:01:39.351Z | 2026-08-26T13:22:04.628Z |
| cve-2026-77541 | 9.1 (v3.1) | A malicious actor with access to the network and … |
Ubiquiti Inc |
UniFi Network Application |
2026-08-26T09:58:08.644Z | 2026-08-26T13:23:20.467Z |
| cve-2026-77540 | 9.1 (v3.1) | A malicious actor with access to the network and … |
Ubiquiti Inc |
UniFi OS Server |
2026-08-26T09:53:45.472Z | 2026-08-27T03:56:53.322Z |
| cve-2026-77539 | 9.1 (v3.1) | A malicious actor with access to the network and … |
Ubiquiti Inc |
UniFi OS Server |
2026-08-26T09:50:36.980Z | 2026-08-27T03:56:49.097Z |
| cve-2026-77538 | 8.2 (v3.1) | A malicious actor with access to the network coul… |
Ubiquiti Inc |
UniFi Connect Application |
2026-08-26T09:47:53.368Z | 2026-08-26T12:55:09.691Z |
| cve-2026-77537 | 10 (v3.1) | A malicious actor with access to the network coul… |
Ubiquiti Inc |
UniFi Protect Application |
2026-08-26T09:39:43.099Z | 2026-08-26T12:56:34.473Z |
| cve-2026-77536 | 9.9 (v3.1) | A malicious actor with access to the network and … |
Ubiquiti Inc |
UniFi OS Server |
2026-08-26T09:35:38.688Z | 2026-08-27T03:56:45.782Z |
| cve-2026-18794 | 8.8 (v4.0) 8.2 (v3.1) | OpenRGB: insufficient input data checks lead to Denial… |
CalcProgrammer1 |
OpenRGB |
2026-08-26T09:29:57.359Z | 2026-08-26T12:57:54.118Z |
| cve-2026-2388 | Reviews and Rating – Google Reviews <= 5.10 - Authenti… |
designextreme |
Reviews and Rating – Google Reviews |
2026-08-26T09:27:43.234Z | 2026-08-27T14:34:17.895Z |
| ID | Description | Updated |
|---|
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| jvndb-2014-000144 | i-HTTPD vulnerable to cross-site scripting | 2014-12-09T14:41+09:00 | 2014-12-16T17:09+09:00 |
| jvndb-2014-000143 | "File Upload BBS" of i-HTTPD vulnerable to remote command execution | 2014-12-09T14:40+09:00 | 2014-12-16T17:10+09:00 |
| jvndb-2014-000148 | Kaku-San-Sei Million Arthur for Android information management vulnerability | 2014-12-04T12:28+09:00 | 2014-12-08T16:05+09:00 |
| jvndb-2014-000147 | KENT-WEB Clip Board vulnerable to cross-site scripting | 2014-12-04T12:22+09:00 | 2014-12-08T16:03+09:00 |
| jvndb-2014-000142 | DBD::PgPP vulnerable to SQL injection | 2014-12-03T15:09+09:00 | 2014-12-03T15:09+09:00 |
| jvndb-2014-000140 | LG Electronics mobile access routers lack access restrictions | 2014-12-02T14:27+09:00 | 2014-12-08T16:07+09:00 |
| jvndb-2014-000139 | ARROWS Me F-11D vulnerability where arbitrary areas may be accessed | 2014-12-02T14:26+09:00 | 2014-12-08T16:06+09:00 |
| jvndb-2014-000138 | OS command injection vulnerability in multiple FUJITSU Android devices | 2014-12-02T14:21+09:00 | 2014-12-09T15:33+09:00 |
| jvndb-2014-000137 | Multiple improper data validation vulnerabilities in Syslink driver for Texas Instruments OMAP mobile processors | 2014-12-02T13:56+09:00 | 2014-12-09T15:34+09:00 |
| jvndb-2014-000136 | SEIL Series routers vulnerable to denial-of-service (DoS) | 2014-12-01T15:24+09:00 | 2014-12-09T15:31+09:00 |
| jvndb-2014-000135 | SEIL Series routers vulnerable to denial-of-service (DoS) | 2014-12-01T15:18+09:00 | 2014-12-09T15:32+09:00 |
| jvndb-2014-000141 | FAST/TOOLS vulnerable to improper restriction of XML external entity references | 2014-11-28T14:54+09:00 | 2014-12-10T10:16+09:00 |
| jvndb-2014-000134 | BSD Operating Systems vulnerable to denial-of-service (DoS) | 2014-11-21T14:10+09:00 | 2014-12-16T17:08+09:00 |
| jvndb-2014-000133 | iLogScanner vulnerable to cross-site scripting | 2014-11-14T14:38+09:00 | 2014-11-18T18:22+09:00 |
| jvndb-2014-000118 | Direct Web Remoting (DWR) vulnerable to cross-site scripting | 2014-11-14T14:37+09:00 | 2014-11-25T17:51+09:00 |
| jvndb-2014-000117 | Direct Web Remoting (DWR) vulnerable to XML external entity injection | 2014-11-14T14:33+09:00 | 2014-11-25T17:50+09:00 |
| jvndb-2014-000131 | Ichitaro series vulnerable to arbitrary code execution | 2014-11-13T16:52+09:00 | 2014-11-27T17:58+09:00 |
| jvndb-2014-004833 | Vulnerability in JP1/NETM/DM and Job Management Partner 1/Software Distribution data reproduction functionality | 2014-11-11T15:33+09:00 | 2015-03-03T16:59+09:00 |
| jvndb-2014-000130 | Multiple Cybozu products vulnerable to buffer overflow | 2014-11-11T13:36+09:00 | 2014-11-25T17:52+09:00 |
| jvndb-2014-000129 | OpenAM vulnerable to denial-of-service (DoS) | 2014-11-10T14:23+09:00 | 2014-11-20T10:09+09:00 |
| jvndb-2014-000126 | QNAP QTS vulnerable to OS command injection | 2014-10-28T14:39+09:00 | 2015-12-25T13:47+09:00 |
| jvndb-2014-000125 | SumaHo for Android fails to verify SSL/TLS server certificates | 2014-10-23T13:43+09:00 | 2018-03-07T14:24+09:00 |
| jvndb-2014-000123 | GIGAPOD vulnerable to denial-of-service (DoS) | 2014-10-16T13:51+09:00 | 2024-05-13T18:10+09:00 |
| jvndb-2014-000122 | Aflax vulnerable to cross-site scripting | 2014-10-16T13:35+09:00 | 2014-10-24T18:32+09:00 |
| jvndb-2014-000121 | BirdBlog vulnerable to cross-site scripting | 2014-10-16T13:26+09:00 | 2014-10-16T13:26+09:00 |
| jvndb-2014-000120 | Huawei E5332 vulnerable to denial-of-service (DoS) | 2014-10-10T14:03+09:00 | 2014-10-21T15:11+09:00 |
| jvndb-2014-000119 | Huawei E5332 vulnerable to denial-of-service (DoS) | 2014-10-10T14:02+09:00 | 2014-10-21T15:15+09:00 |
| jvndb-2014-004316 | Safari issue in handling application cache | 2014-09-25T14:54+09:00 | 2014-09-25T14:54+09:00 |
| jvndb-2014-000116 | Yahoo! Japan Box for Android issue where it fails to verify SSL server certificates | 2014-09-25T14:54+09:00 | 2014-09-25T14:54+09:00 |
| jvndb-2014-000112 | N-Media file uploader vulnerability in handling uploaded files | 2014-09-25T14:53+09:00 | 2014-09-29T11:39+09:00 |
| ID | Description | Updated |
|---|
| ID | Description | Published | Updated |
|---|---|---|---|
| certfr-2025-avi-0054 | Multiples vulnérabilités dans Oracle MySQL | 2025-01-22T00:00:00.000000 | 2025-01-22T00:00:00.000000 |
| certfr-2025-avi-0053 | Multiples vulnérabilités dans Oracle Java SE | 2025-01-22T00:00:00.000000 | 2025-01-22T00:00:00.000000 |
| certfr-2025-avi-0052 | Multiples vulnérabilités dans Oracle Database Server | 2025-01-22T00:00:00.000000 | 2025-01-22T00:00:00.000000 |
| certfr-2025-avi-0051 | Multiples vulnérabilités dans phpMyAdmin | 2025-01-22T00:00:00.000000 | 2025-01-22T00:00:00.000000 |
| certfr-2025-avi-0050 | Multiples vulnérabilités dans les produits Elastic | 2025-01-21T00:00:00.000000 | 2025-01-21T00:00:00.000000 |
| certfr-2025-avi-0049 | Multiples vulnérabilités dans Microsoft Edge | 2025-01-20T00:00:00.000000 | 2025-01-20T00:00:00.000000 |
| certfr-2025-avi-0048 | Vulnérabilité dans Microsoft Windows | 2025-01-17T00:00:00.000000 | 2025-01-17T00:00:00.000000 |
| certfr-2025-avi-0047 | Multiples vulnérabilités dans le noyau Linux de SUSE | 2025-01-17T00:00:00.000000 | 2025-01-17T00:00:00.000000 |
| certfr-2025-avi-0046 | Multiples vulnérabilités dans le noyau Linux d'Ubuntu | 2025-01-17T00:00:00.000000 | 2025-01-17T00:00:00.000000 |
| certfr-2025-avi-0045 | Multiples vulnérabilités dans les produits IBM | 2025-01-17T00:00:00.000000 | 2025-01-17T00:00:00.000000 |
| certfr-2025-avi-0044 | Vulnérabilité dans les produits Moxa | 2025-01-17T00:00:00.000000 | 2025-01-17T00:00:00.000000 |
| certfr-2025-avi-0043 | Multiples vulnérabilités dans SPIP | 2025-01-17T00:00:00.000000 | 2026-02-25T00:00:00.000000 |
| certfr-2025-avi-0042 | Vulnérabilité dans le greffon Splunk Supporting pour Active Directory | 2025-01-16T00:00:00.000000 | 2025-01-16T00:00:00.000000 |
| certfr-2025-avi-0041 | Multiples vulnérabilités dans les produits Microsoft | 2025-01-15T00:00:00.000000 | 2025-01-15T00:00:00.000000 |
| certfr-2025-avi-0040 | Multiples vulnérabilités dans Microsoft .Net | 2025-01-15T00:00:00.000000 | 2025-01-15T00:00:00.000000 |
| certfr-2025-avi-0039 | Multiples vulnérabilités dans Microsoft Windows | 2025-01-15T00:00:00.000000 | 2025-01-15T00:00:00.000000 |
| certfr-2025-avi-0038 | Multiples vulnérabilités dans Microsoft Office | 2025-01-15T00:00:00.000000 | 2025-01-15T00:00:00.000000 |
| certfr-2025-avi-0037 | Vulnérabilité dans Microsoft Edge | 2025-01-15T00:00:00.000000 | 2025-01-15T00:00:00.000000 |
| certfr-2025-avi-0036 | Multiples vulnérabilités dans les produits Moxa | 2025-01-15T00:00:00.000000 | 2025-01-15T00:00:00.000000 |
| certfr-2025-avi-0035 | Multiples vulnérabilités dans Ivanti Endpoint Manager (EPM) | 2025-01-15T00:00:00.000000 | 2025-01-15T00:00:00.000000 |
| certfr-2025-avi-0034 | Multiples vulnérabilités dans les produits Schneider Electric | 2025-01-15T00:00:00.000000 | 2025-01-15T00:00:00.000000 |
| certfr-2025-avi-0033 | Multiples vulnérabilités dans Google Chrome | 2025-01-15T00:00:00.000000 | 2025-01-15T00:00:00.000000 |
| certfr-2025-avi-0032 | Multiples vulnérabilités dans HPE Aruba Networking AOS | 2025-01-15T00:00:00.000000 | 2025-01-15T00:00:00.000000 |
| certfr-2025-avi-0031 | Multiples vulnérabilités dans les produits Fortinet | 2025-01-15T00:00:00.000000 | 2025-01-15T00:00:00.000000 |
| certfr-2025-avi-0030 | Multiples vulnérabilités dans les produits Fortinet | 2025-01-14T00:00:00.000000 | 2025-02-12T00:00:00.000000 |
| certfr-2025-avi-0029 | Multiples vulnérabilités dans les produits Siemens | 2025-01-14T00:00:00.000000 | 2025-01-14T00:00:00.000000 |
| certfr-2025-avi-0028 | Multiples vulnérabilités dans Typo3 | 2025-01-14T00:00:00.000000 | 2025-01-14T00:00:00.000000 |
| certfr-2025-avi-0027 | Multiples vulnérabilités dans les produits SAP | 2025-01-14T00:00:00.000000 | 2025-01-14T00:00:00.000000 |
| certfr-2025-avi-0026 | Vulnérabilité dans Veeam Backup pour Microsoft Azure | 2025-01-14T00:00:00.000000 | 2025-01-14T00:00:00.000000 |
| certfr-2025-avi-0025 | Multiples vulnérabilités dans Mozilla Firefox pour iOS | 2025-01-13T00:00:00.000000 | 2025-01-13T00:00:00.000000 |